PT-2026-47130 · Wpdevteam · Essential Addons For Elementor – Popular Elementor Templates & Widgets

Anirudh Makkar

·

Published

2026-06-06

·

Updated

2026-06-06

·

CVE-2026-7665

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 6.6.4 via the ajax load more function due to insufficient restrictions on which posts can be included. This makes it possible for unauthenticated attackers to extract data from password protected, private, or draft posts that they should not have access to.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2026-7665

Affected Products

Essential Addons For Elementor – Popular Elementor Templates & Widgets